CVE-2024-4395

HIGH

Jamf Compliance Editor <1.3.1 - Privilege Escalation

Title source: llm
STIX 2.1

Description

The XPC service within the audit functionality of Jamf Compliance Editor before version 1.3.1 on macOS can lead to local privilege escalation.

Scores

CVSS v3 7.8
EPSS 0.0021
EPSS Percentile 11.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-269
Status published
Products (1)
JAMF/Jamf Compliance Editor 1 - 1.3.1
Published Jun 27, 2024
Tracked Since Feb 18, 2026